{"id":25990513,"date":"2024-07-23T14:55:54","date_gmt":"2024-07-23T13:55:54","guid":{"rendered":"https:\/\/staging.sylvania-group.com\/haavoittuvuuksien-loytaminen-ja-paljastaminen\/"},"modified":"2025-04-03T12:52:59","modified_gmt":"2025-04-03T11:52:59","slug":"haavoittuvuuksien-loytaminen-ja-paljastaminen","status":"publish","type":"page","link":"https:\/\/staging.sylvania-group.com\/fi-fi\/etusivu-ammattilainen\/legal-pages\/haavoittuvuuksien-loytaminen-ja-paljastaminen\/","title":{"rendered":"Haavoittuvuuksien l\u00f6yt\u00e4minen ja paljastaminen"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; disabled_on=&#8221;on|off|off&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; use_background_color_gradient=&#8221;on&#8221; background_color_gradient_stops=&#8221;#008066 0%|rgba(0,128,102,0.71) 0%&#8221; background_color_gradient_overlays_image=&#8221;on&#8221; background_image=&#8221;https:\/\/cdn.sylvania-group.com\/wp-content\/uploads\/2024\/06\/02124019\/carousel_retail-learning-image-2.jpg&#8221; height_tablet=&#8221;360px&#8221; height_phone=&#8221;489px&#8221; height_last_edited=&#8221;on|phone&#8221; custom_padding=&#8221;60px||60px||true|false&#8221; locked=&#8221;off&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row use_custom_gutter=&#8221;on&#8221; gutter_width=&#8221;1&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;0px||0px||false|false&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; header_font=&#8221;Frutiger Pro &#8211; Bold|700|||||||&#8221; header_text_color=&#8221;#FFFFFF&#8221; header_font_size=&#8221;75px&#8221; header_line_height=&#8221;1.3em&#8221; text_orientation=&#8221;center&#8221; custom_margin=&#8221;||6px||false|false&#8221; header_font_size_tablet=&#8221;44px&#8221; header_font_size_phone=&#8221;42px&#8221; header_font_size_last_edited=&#8221;on|phone&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h1><span style=\"font-size: 75px;\">HAAVOITTUVUUKSIEN L\u00d6YT\u00c4MINEN JA PALJASTAMINEN<\/span><\/h1>\n<div class=\"content-wrapper text-module\"><\/div>\n<p>[\/et_pb_text][et_pb_divider color=&#8221;gcid-0e7c3dfe-51a3-4b30-811c-a1a5484d29dc&#8221; divider_weight=&#8221;4px&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; width=&#8221;18%&#8221; module_alignment=&#8221;center&#8221; custom_margin=&#8221;||4px||false|false&#8221; global_colors_info=&#8221;{%22gcid-0e7c3dfe-51a3-4b30-811c-a1a5484d29dc%22:%91%22color%22%93}&#8221;][\/et_pb_divider][dipi_breadcrumbs bc_custom_home=&#8221;on&#8221; bc_home_text=&#8221;Etusivu&#8221; bc_home_url=&#8221;https:\/\/staging.sylvania-group.com\/templates\/&#8221; bc_items_alignment=&#8221;dipi-bc-center&#8221; bc_separator_size=&#8221;20px&#8221; bc_separator_color=&#8221;#FFFFFF&#8221; bc_item_bg_color=&#8221;RGBA(255,255,255,0)&#8221; bc_item_padding=&#8221;2px|15px|2px|15px|false|true&#8221; bc_active_item_color=&#8221;RGBA(255,255,255,0)&#8221; bc_active_item_padding=&#8221;3px|15px|3px|15px|false|true&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; items_text_color=&#8221;#FFFFFF&#8221; min_height=&#8221;55px&#8221; border_radii_items=&#8221;on|25px|25px|25px|25px&#8221; border_width_all_items=&#8221;2px&#8221; border_color_all_items=&#8221;#84bd00&#8243; border_radii_active=&#8221;on|25px|25px|25px|25px&#8221; border_width_all_active=&#8221;2px&#8221; border_color_all_active=&#8221;#FFFFFF&#8221; locked=&#8221;off&#8221; global_colors_info=&#8221;{}&#8221;][\/dipi_breadcrumbs][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; disabled_on=&#8221;off|on|on&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; use_background_color_gradient=&#8221;on&#8221; background_color_gradient_stops=&#8221;#008066 0%|rgba(0,128,102,0.71) 0%&#8221; background_color_gradient_overlays_image=&#8221;on&#8221; background_image=&#8221;https:\/\/cdn.sylvania-group.com\/wp-content\/uploads\/2024\/06\/02124019\/carousel_retail-learning-image-2.jpg&#8221; min_height=&#8221;247.4px&#8221; height_tablet=&#8221;360px&#8221; height_phone=&#8221;557px&#8221; height_last_edited=&#8221;on|phone&#8221; custom_padding=&#8221;6px||6px||true|false&#8221; locked=&#8221;off&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row use_custom_gutter=&#8221;on&#8221; gutter_width=&#8221;1&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; min_height=&#8221;218.4px&#8221; custom_margin=&#8221;|auto|-16px|auto||&#8221; custom_padding=&#8221;0px||0px||false|false&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text _builder_version=&#8221;4.27.2&#8243; _module_preset=&#8221;default&#8221; header_font=&#8221;Frutiger Pro &#8211; Bold|700|||||||&#8221; header_text_color=&#8221;#FFFFFF&#8221; header_font_size=&#8221;75px&#8221; header_line_height=&#8221;1.3em&#8221; text_orientation=&#8221;center&#8221; custom_margin=&#8221;||6px||false|false&#8221; header_font_size_tablet=&#8221;44px&#8221; header_font_size_phone=&#8221;42px&#8221; header_font_size_last_edited=&#8221;on|phone&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h1><span style=\"font-size: 40px;\">VULNERABILITY DISCOVERY AND DISCLOSURE<\/span><\/h1>\n<div class=\"content-wrapper text-module\"><\/div>\n<p>[\/et_pb_text][et_pb_divider color=&#8221;gcid-0e7c3dfe-51a3-4b30-811c-a1a5484d29dc&#8221; divider_weight=&#8221;4px&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; width=&#8221;18%&#8221; module_alignment=&#8221;center&#8221; custom_margin=&#8221;||4px||false|false&#8221; global_colors_info=&#8221;{%22gcid-0e7c3dfe-51a3-4b30-811c-a1a5484d29dc%22:%91%22color%22%93}&#8221;][\/et_pb_divider][dipi_breadcrumbs bc_custom_home=&#8221;on&#8221; bc_home_text=&#8221;Etusivu&#8221; bc_home_url=&#8221;https:\/\/staging.sylvania-group.com\/templates\/&#8221; bc_items_alignment=&#8221;dipi-bc-center&#8221; bc_separator_size=&#8221;20px&#8221; bc_separator_color=&#8221;#FFFFFF&#8221; bc_item_bg_color=&#8221;RGBA(255,255,255,0)&#8221; bc_item_padding=&#8221;2px|15px|2px|15px|false|true&#8221; bc_active_item_color=&#8221;RGBA(255,255,255,0)&#8221; bc_active_item_padding=&#8221;3px|15px|3px|15px|false|true&#8221; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; items_text_color=&#8221;#FFFFFF&#8221; min_height=&#8221;55px&#8221; border_radii_items=&#8221;on|25px|25px|25px|25px&#8221; border_width_all_items=&#8221;2px&#8221; border_color_all_items=&#8221;#84bd00&#8243; border_radii_active=&#8221;on|25px|25px|25px|25px&#8221; border_width_all_active=&#8221;2px&#8221; border_color_all_active=&#8221;#FFFFFF&#8221; locked=&#8221;off&#8221; global_colors_info=&#8221;{}&#8221;][\/dipi_breadcrumbs][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; min_height=&#8221;5990.6px&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; custom_margin=&#8221;6px|auto||auto||&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.25.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text _builder_version=&#8221;4.27.2&#8243; _module_preset=&#8221;default&#8221; text_font_size=&#8221;18px&#8221; text_line_height=&#8221;1.6em&#8221; header_text_color=&#8221;#12876f&#8221; header_font_size=&#8221;45px&#8221; header_2_font=&#8221;|700|||||||&#8221; header_2_text_color=&#8221;#12876f&#8221; header_2_font_size=&#8221;35px&#8221; header_3_font=&#8221;|600|||||||&#8221; header_3_text_color=&#8221;#12876f&#8221; header_3_font_size=&#8221;25px&#8221; header_3_line_height=&#8221;1.3em&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h2 class=\"text-module__title\" style=\"text-align: center;\">VULNERABILITY DISCOVERY AND DISCLOSURE<\/h2>\n<p style=\"text-align: center;\">Vulnerability discovery and disclosure policy<\/p>\n<p style=\"text-align: right;\"><em>Version 1.5\u2013 March 2025<\/em><\/p>\n<p>&nbsp;<\/p>\n<p style=\"text-align: justify;\"><b><span data-contrast=\"auto\"><\/span><\/b><\/p>\n<p style=\"text-align: justify;\"><strong>Introduction<\/strong><\/p>\n<p style=\"text-align: justify;\">Sylvania considers that the safety, privacy and security of our customers is one of its top priorities. We design and make products and services with the best quality and reliability possible. Despite our efforts to implement the best possible security measures, vulnerabilities may still be present in our products and services.<\/p>\n<p style=\"text-align: justify;\">This document describes Sylvania\u2019s policy for receiving reports related to potential security vulnerabilities in its products and services, the company\u2019s procedures in handling a report and the company\u2019s standard practice with regards to informing customers of verified vulnerabilities.<\/p>\n<p style=\"text-align: justify;\">Everyone is encouraged to report identified vulnerabilities, regardless the type of service or products. Researchers, partners, customers or any other source are welcomed to report any vulnerabilities found.<\/p>\n<p style=\"text-align: justify;\"><strong>Scope<\/strong><\/p>\n<p style=\"text-align: justify;\">This policy applies to the following systems and services:<\/p>\n<ul style=\"text-align: justify;\">\n<li><a rel=\"noopener\" href=\"https:\/\/staging.sylvania-group.com\/fi-FI\/\" target=\"_blank\">sylvania-group.com<\/a><\/li>\n<li><a rel=\"noopener\" href=\"https:\/\/comnet.sylvania-lighting.com\/\" target=\"_blank\">https:\/\/comnet.sylvania-lighting.com<\/a><\/li>\n<li><span>SylSmart Energy (<a rel=\"noopener\" href=\"https:\/\/energy.sylvania-lighting.com\" target=\"_blank\">energy.sylvania-lighting.com<\/a>)<\/span><\/li>\n<li>SylSmart Home mobile application<\/li>\n<li>SylSmart Standalone mobile application<\/li>\n<li>SylSmart Connected mobile application and web application (<a rel=\"noopener\" href=\"https:\/\/connected.sylvania-lighting.com\/\" target=\"_blank\">https:\/\/connected.sylvania-lighting.com\/<\/a>)<\/li>\n<li>SylSmart Connected Pro (<a href=\"https:\/\/connectedpro.sylvania-lighting.com\">https:\/\/connectedpro.sylvania-lighting.com<\/a>)<\/li>\n<li>Solution Sylvania mobile application<\/li>\n<li>SylSmart City web application (city.sylvania-lighting.com \/ city.sylvania-latam.com)<\/li>\n<li>SylSmart City mobile application<\/li>\n<\/ul>\n<p style=\"text-align: justify;\"><strong>Note for researchers: Any service not expressly listed above are excluded from scope and are not authorised for testing.<\/strong><\/p>\n<p style=\"text-align: justify;\"><strong>Guidelines<\/strong><\/p>\n<p>We request that you:<\/p>\n<ul style=\"text-align: justify;\">\n<li>Notify Feilo Sylvania first and as soon as possible after you have discovered a real or potential security issue<\/li>\n<li>Make every effort to avoid privacy violations, degradation of system performance, degradation of user experience, disruption to production systems, and destruction or manipulation of data.<\/li>\n<li>Only use exploits to the extent necessary to confirm a vulnerability\u2019s presence.<\/li>\n<li>Do not use an exploit to compromise or extract data, establish command line access and\/or persistence, or use the exploit to \u201cpivot\u201d to other systems.<\/li>\n<li>Once you\u2019ve established that a vulnerability exists or encounter any sensitive data (including personally identifiable information, financial information, or proprietary information or trade secrets of any party),<strong>you must stop your test, notify us immediately, and not disclose this data to anyone else.<\/strong><\/li>\n<li>Give Feilo Sylvania reasonable time to resolve the issue<\/li>\n<li>Do not use Network denial of service (DoS or DDoS) tests or other tests that impair access to or damage a system or data<\/li>\n<\/ul>\n<p style=\"text-align: justify;\"><strong>If these guidelines are followed, no legal action will be taken against any persons discovering and reporting a vulnerability.<\/strong><\/p>\n<p style=\"text-align: justify;\"><strong>Reporting a vulnerability<\/strong><\/p>\n<p style=\"text-align: justify;\">The preferred method for contacting Feilo Sylvania regarding a real or potential vulnerability within its products or services, is by sending an e-mail to:<\/p>\n<p style=\"text-align: justify;\"><u>info@sylvania-lighting.com<\/u>.<\/p>\n<p style=\"text-align: justify;\">In order to efficiently process your report of the vulnerability, we expect a well-written report in English containing the following information:<\/p>\n<ul style=\"text-align: justify;\">\n<li>Time and date of discovery<\/li>\n<li>Mobile application being used<\/li>\n<li>Mobile Operating system<\/li>\n<li>Computer model and details of operating system<\/li>\n<li>Device model number and associated MAC\/UUID addresses<\/li>\n<li>Product Model &amp; number\u00a0using the vendor nomenclature if possible<\/li>\n<li>URL, browser information\u00a0including type and version and input required to reproduce the vulnerability;<\/li>\n<li>Technical Description\u00a0\u2014 provide what actions were being performed and the result in as much detail as possible including screen shots,<\/li>\n<li>Sample Code\u00a0\u2014 if possible, provide code that was used in testing to create the vulnerability;<\/li>\n<li>Reporting\u2019s party Contact Information\u00a0\u2014 best contact details<\/li>\n<li>Disclosure Plan(s)\u00a0\u2014 current plan to disclose;<\/li>\n<li>Threat\/Risk Assessment and severity rating\u00a0\u2014 contains details of the identified threats and\/or risks including a risk level (minor., major, critical)<\/li>\n<li>Relevant information about connected devices\u00a0if vulnerability arises during interaction.<\/li>\n<\/ul>\n<p style=\"text-align: justify;\">Please do not include personal data in your reports, except what is necessary to contact you in line with GDPR compliance.<\/p>\n<p style=\"text-align: justify;\">Participating in this reporting mechanism does not grant you any right to intellectual property owned by Feilo Sylvania or any third party.<\/p>\n<p style=\"text-align: justify;\"><strong>Processing the report \u2013 Next steps<\/strong><\/p>\n<p style=\"text-align: justify;\">Once Feilo Sylvania receives your report, Feilo Sylvania will endeavour to acknowledge receipt to all submitted reports within seven days.<\/p>\n<p style=\"text-align: justify;\">Your report it will be processed into our issue tracking system. The severity rating of the report will be considered and allocated a severity rating at Feilo Sylvania\u2019s sole discretion and an appropriate member of the team will contact you to follow-up.<\/p>\n<p style=\"text-align: justify;\">To ensure confidentiality, we encourage you to encrypt any sensitive information you send to us via e-mail. Feilo Sylvania will ensure an open dialog to discuss issues and keep you notified at each stage of the investigation.<\/p>\n<p style=\"text-align: justify;\">Feilo Sylvania has full discretion to determine whether to accept a report based on the level of severity or content of the report provided.<\/p>\n<p style=\"text-align: justify;\">Feilo Sylvania thanks you for assistance in identifying a vulnerability, for improving our products and services and contributing to a more secure community.<\/p>\n<p style=\"text-align: justify;\">All aspects of this process are subject to change without notice, as well as to case-by exceptions. No particular level of response is guaranteed for any specific issue or group of issues.<\/p>\n<p style=\"text-align: justify;\">Note there is no financial reward for any reported vulnerability.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>HAAVOITTUVUUKSIEN L\u00d6YT\u00c4MINEN JA PALJASTAMINEN <div class=\"et_pb_with_border et_pb_module dipi_breadcrumbs dipi_breadcrumbs_0\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module_inner\">\n\t\t\t\t\t<div class=\"dipi-breadcrumbs dipi-bc-center\">\r\n                <ul >\r\n                    \r\n                                                        <li  class=\"dipi-breadcrumb-item dipi-breadcrumb-home\">\r\n\r\n                        \r\n                            <a  href=\"https:\/\/staging.sylvania-group.com\/templates\/\">\r\n                                <span  >\r\n                                                                        Etusivu                                <\/span>\r\n                            <\/a>\r\n\r\n                                                <meta itemprop=\"position\" content=\"1\"\/>                    <\/li>\r\n\r\n                    <li class=\"dipi-breadcrumb-separator\">\r\n                    <span class=\"et-pb-icon dipi-separator-icon\">$<\/span>\r\n                <\/li>                            \r\n                <\/ul>\r\n            <\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>VULNERABILITY DISCOVERY AND DISCLOSURE <div class=\"et_pb_with_border et_pb_module dipi_breadcrumbs dipi_breadcrumbs_1\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module_inner\">\n\t\t\t\t\t<div class=\"dipi-breadcrumbs dipi-bc-center\">\r\n                <ul >\r\n                    \r\n                                                        <li  class=\"dipi-breadcrumb-item dipi-breadcrumb-home\">\r\n\r\n                        \r\n                            <a  href=\"https:\/\/staging.sylvania-group.com\/templates\/\">\r\n                                <span  >\r\n                                                                        Etusivu                                <\/span>\r\n                            <\/a>\r\n\r\n                                                <meta itemprop=\"position\" content=\"2\"\/>                    <\/li>\r\n\r\n                    <li class=\"dipi-breadcrumb-separator\">\r\n                    <span class=\"et-pb-icon dipi-separator-icon\">$<\/span>\r\n                <\/li>                            \r\n                <\/ul>\r\n            <\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>VULNERABILITY DISCOVERY AND [&hellip;]<\/p>\n","protected":false},"author":9,"featured_media":0,"parent":25998920,"menu_order":63,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"_seopress_titles_title":"","_seopress_titles_desc":"","_seopress_robots_index":"","_seopress_robots_follow":"","_seopress_robots_imageindex":"","_seopress_robots_snippet":"","_seopress_robots_primary_cat":"0","_seopress_robots_breadcrumbs":"","_seopress_robots_freeze_modified_date":"","_seopress_robots_custom_modified_date":"","_seopress_robots_canonical":"","_seopress_social_fb_title":"","_seopress_social_fb_desc":"","_seopress_social_fb_img":"","_seopress_social_fb_img_attachment_id":0,"_seopress_social_fb_img_width":0,"_seopress_social_fb_img_height":0,"_seopress_social_twitter_title":"","_seopress_social_twitter_desc":"","_seopress_social_twitter_img":"","_seopress_social_twitter_img_attachment_id":0,"_seopress_social_twitter_img_width":0,"_seopress_social_twitter_img_height":0,"_seopress_redirections_value":"","_seopress_redirections_enabled":"","_seopress_redirections_enabled_regex":"","_seopress_redirections_logged_status":"both","_seopress_redirections_param":"","_seopress_redirections_type":301,"_seopress_analysis_target_kw":"","_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"dipi_cpt_category":[43617],"class_list":["post-25990513","page","type-page","status-publish","hentry","dipi_cpt_category-finnish-professional"],"acf":[],"_links":{"self":[{"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/pages\/25990513","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/comments?post=25990513"}],"version-history":[{"count":8,"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/pages\/25990513\/revisions"}],"predecessor-version":[{"id":26726587,"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/pages\/25990513\/revisions\/26726587"}],"up":[{"embeddable":true,"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/pages\/25998920"}],"wp:attachment":[{"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/media?parent=25990513"}],"wp:term":[{"taxonomy":"dipi_cpt_category","embeddable":true,"href":"https:\/\/staging.sylvania-group.com\/fi-fi\/wp-json\/wp\/v2\/dipi_cpt_category?post=25990513"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}